CVE Vulnerabilities

CVE-2014-4062

Published: Aug 12, 2014 | Modified: Oct 12, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Microsoft .NET Framework 1.1 SP1, 2.0 SP2, 3.0 SP2, 3.5, and 3.5.1 does not properly implement the ASLR protection mechanism, which allows remote attackers to obtain sensitive address information via a crafted web site, aka .NET ASLR Vulnerability.

Affected Software

Name Vendor Start Version End Version
.net_framework Microsoft 1.1-sp1 (including) 1.1-sp1 (including)
.net_framework Microsoft 2.0-sp2 (including) 2.0-sp2 (including)
.net_framework Microsoft 3.0-sp2 (including) 3.0-sp2 (including)
.net_framework Microsoft 3.5 (including) 3.5 (including)
.net_framework Microsoft 3.5.1 (including) 3.5.1 (including)

References